Security Advisory

CVE-2023-28409

9.8
CRITICAL

Vulnerability Description

Unrestricted upload of file with dangerous type exists in MW WP Form versions v4.4.2 and earlier, which may allow a remote unauthenticated attacker to upload an arbitrary file.
Published Date May 23, 2023
Official Source NIST NVD Advisory